Advertisement
Guest User

Untitled

a guest
Jul 22nd, 2019
143
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.10 KB | None | 0 0
  1. # Script (7.60.0096 / 12.11.2008) (0x0220411d;0x0c000063)
  2.  
  3. lang English
  4. flash 0
  5.  
  6. # Setup/IP-Router/Firewall/Actions
  7. cd /2/8/10/4
  8. # Name Description
  9. # -------------------------------------------------------------------------------------------------------
  10. tab 1 2
  11. add "ACCEPT" "%A"
  12. add "REJECT-WITH-SNMP-MESSAGE" "%Lcds0 %R %N"
  13. add "ACCEPT-VPN" "%Lcds0 @v %A"
  14. cd /
  15. # Setup/IP-Router/Firewall/Objects
  16. cd /2/8/10/1
  17. # Name Description
  18. # -------------------------------------------------------------------------------------------------------
  19. tab 1 2
  20. add "ANY" ""
  21. add "ANYHOST" "%A0.0.0.0 %M0.0.0.0"
  22. add "LOCALNET" "%L"
  23. add "ICMP" "%P1"
  24. add "TCP" "%P6"
  25. add "UDP" "%P17"
  26. add "FTP" "TCP %S21 "
  27. add "SSH" "TCP %S22 "
  28. add "TELNET" "TCP %S23 "
  29. add "MAIL" "TCP %S25,110,143 "
  30. add "HTTP" "TCP %S80,443 "
  31. add "HTTPS" "TCP %S443 "
  32. add "WEB" "TCP %S80,443 "
  33. add "RDP" "TCP %S3389 "
  34. add "ELSTER" "TCP %S8000 "
  35. add "TFTP" "UDP %S69 "
  36. add "NTP" "UDP %S123 "
  37. add "IPSEC" "UDP %S500 "
  38. add "SNMP" "UDP %S161-162 "
  39. add "DNS" "TCP UDP %S53 "
  40. add "SMTP" "TCP %S25 "
  41. cd /
  42. # Setup/IP-Router/Firewall/Rules
  43. cd /2/8/10/2
  44. # Name Prot. Source Destination Action Linked Prio Firewall- VPN-Rule Stateful Rtg-tag Comment
  45. # ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
  46. tab 1 2 3 4 7 8 9 10 11 12 14 13
  47. add "ALLOW-VPN-ROUTING" "ANY" "ANYHOST" "ANYHOST" "ACCEPT-VPN" 0 1 0 0 0 0 ""
  48. add "ALLOW-IPSEC" "ANY" "LOCALNET" "IPSEC ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  49. add "ALLOW-SNMP" "ANY" "LOCALNET" "SNMP ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  50. add "ALLOW-NTP" "ANY" "LOCALNET" "NTP ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  51. add "ALLOW-TFTP" "ANY" "LOCALNET" "TFTP ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  52. add "ALLOW-DNS" "ANY" "LOCALNET" "DNS ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  53. add "ALLOW-ELSTER" "ANY" "LOCALNET" "ELSTER ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  54. add "ALLOW-RDP" "ANY" "LOCALNET" "RDP ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  55. add "ALLOW-HTTP/S" "ANY" "LOCALNET" "WEB ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  56. add "ALLOW-MAILING" "ANY" "LOCALNET" "MAIL ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  57. add "ALLOW-TELNET" "ANY" "LOCALNET" "TELNET ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  58. add "ALLOW-SSH" "ANY" "LOCALNET" "SSH ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  59. add "ALLOW-FTP" "ANY" "LOCALNET" "FTP ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  60. add "ALLOW-ICMP" "ICMP" "LOCALNET" "ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  61. add "ALLOW-SMTP" "ANY" "LOCALNET" "SMTP ANYHOST" "ACCEPT" 0 0 0 0 0 0 ""
  62. add "DENY-ALL" "ANY" "ANYHOST" "ANYHOST" "REJECT-WITH-SNMP-MESSAGE" 0 0 0 0 0 0 ""
  63.  
  64.  
  65. flash 1
  66.  
  67. # done
  68. exit
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement